B
今週中
Check Point社のSecurity Gateway、Spark Firewall、Security Management Serverにおいて…
📌 一言でいうと
Check Point社のSecurity Gateway、Spark Firewall、Security Management Serverにおいて、深刻な脆弱性が報告されました。CVE-2026-85102は認証バイパスおよびリモートコード実行(RCE)を可能にし、CVE-2026-85103はASN.1デコード時のヒープオーバーフローによるRCEを可能にします。影響を受けるユーザーは、速やかに最新のアップデートを適用することが推奨されています。
🔍該当判定
- Check Point社の『Security Gateway』を導入している
- Check Point社の『Security Management Server』を導入している
- Check Point社の『Spark Firewall』を利用してVPN接続(拠点間またはリモートアクセス)を行っている
- Check Point社の『Spark Firewall』を単体で利用している
上記いずれにも該当しない → 静観でOK
✅該当時の対応
ベンダーが提供する最新のセキュリティアップデートを速やかに適用してください。特にVPN機能(Remote Access/Site-to-Site)を利用している環境では優先的な対応が推奨されます。
📧 メール案を見る (管理者向け)
⚠️ これは AI が生成した参考例です。配信前に必ず内容をご確認のうえ、貴社の状況に合わせて編集してご利用ください。実際の被害状況や自社の利用環境を踏まえた判断は、貴社のセキュリティ責任者にご確認ください。
件名: 【共有】Check Point製品 脆弱性 (CVE-2026-85102, CVE-2026-85103) 対応について
お疲れさまです。Check Point製品の脆弱性に関する情報共有です。
■ 概要
Check Point社の複数の製品において、リモートコード実行 (RCE) および認証バイパスを可能にする深刻な脆弱性が発見されました。攻撃者がこれらを悪用した場合、システム権限の奪取や不正アクセスが行われる可能性があります。
■ 影響範囲
- Security Gateway (複数バージョン)
- Check Point Spark Firewall (Site to Site VPN / Remote Access VPN 利用時を含む)
- Security Management Server (複数バージョン)
■ 対応手順
1. 自社で利用しているCheck Point製品のバージョンを確認してください。
2. ベンダー公式のセキュリティアドバイザリを確認し、最新のパッチまたはアップデートを適用してください。
■ 参考情報
- Check Point Security Advisory (AV26-902)
対応優先度: 高
対応期限: 速やかに
お疲れさまです。Check Point製品の脆弱性に関する情報共有です。
■ 概要
Check Point社の複数の製品において、リモートコード実行 (RCE) および認証バイパスを可能にする深刻な脆弱性が発見されました。攻撃者がこれらを悪用した場合、システム権限の奪取や不正アクセスが行われる可能性があります。
■ 影響範囲
- Security Gateway (複数バージョン)
- Check Point Spark Firewall (Site to Site VPN / Remote Access VPN 利用時を含む)
- Security Management Server (複数バージョン)
■ 対応手順
1. 自社で利用しているCheck Point製品のバージョンを確認してください。
2. ベンダー公式のセキュリティアドバイザリを確認し、最新のパッチまたはアップデートを適用してください。
■ 参考情報
- Check Point Security Advisory (AV26-902)
対応優先度: 高
対応期限: 速やかに
Subject: [Security Advisory] Check Point Vulnerabilities (CVE-2026-85102, CVE-2026-85103)
Dear IT/Security Team,
This is a notification regarding critical vulnerabilities identified in Check Point products.
■ Overview
Two critical vulnerabilities have been disclosed: CVE-2026-85102 (Authentication Bypass and RCE in VPN services) and CVE-2026-85103 (ASN.1 decoding heap overflow leading to RCE). These could allow an unauthenticated attacker to execute arbitrary code on the affected systems.
■ Affected Scope
- Security Gateway (Multiple versions)
- Check Point Spark Firewall (including Site-to-Site and Remote Access VPN)
- Security Management Server (Multiple versions)
■ Action Plan
1. Identify the current versions of Check Point appliances in use within the environment.
2. Apply the latest security updates provided by the vendor immediately.
■ Reference
- Check Point Security Advisory (AV26-902)
Priority: High
Deadline: Immediate
Dear IT/Security Team,
This is a notification regarding critical vulnerabilities identified in Check Point products.
■ Overview
Two critical vulnerabilities have been disclosed: CVE-2026-85102 (Authentication Bypass and RCE in VPN services) and CVE-2026-85103 (ASN.1 decoding heap overflow leading to RCE). These could allow an unauthenticated attacker to execute arbitrary code on the affected systems.
■ Affected Scope
- Security Gateway (Multiple versions)
- Check Point Spark Firewall (including Site-to-Site and Remote Access VPN)
- Security Management Server (Multiple versions)
■ Action Plan
1. Identify the current versions of Check Point appliances in use within the environment.
2. Apply the latest security updates provided by the vendor immediately.
■ Reference
- Check Point Security Advisory (AV26-902)
Priority: High
Deadline: Immediate